High
CVSS 7.2
Overview
SugarCRM before 13.0.4 and 14.x before 14.0.1 allows SSRF in the API module because a limited type of code injection can occur.
SugarCRM before 13.0.4 and 14.x before 14.0.1 allows SSRF in the API module beca...
SugarCRM before 13.0.4 and 14.x before 14.0.1 allows SSRF in the API module because a limited type of code injection can occur.
This vulnerability is rated 🟠 HIGH.
Recommended actions: